A career in our Cybersecurity, Privacy and Forensics will provide you the opportunity to solve our clients most critical business and data protection related challenges. You will be part of a growing team driving strategic programs, data analytics, innovation, deals, cyber resiliency, response, and technical implementation activities.
The Threat Detection team works with clients to detect cyber threats, identify malicious activity that could compromise the network and help with mitigation efforts before the threat can present vulnerabilities.
Responsibilities
- Use feedback and reflection to develop self awareness, personal strengths and address development areas.
- Delegate to others to provide stretch opportunities, coaching them to deliver results.
- Demonstrate critical thinking and the ability to bring order to unstructured problems.
- Use a broad range of tools and techniques to extract insights from current industry or sector trends.
- Review your work and that of others for quality, accuracy and relevance.
- Know how and when to use tools available for a given situation and can explain the reasons for this choice.
- Seek and embrace opportunities which give exposure to different situations, environments and perspectives.
- Use straightforward communication, in a structured way, when influencing and connecting with others.
- Able to read situations and modify behavior to build quality relationships.
Positional Requirements
- Minimum of 4-8 years of prior experience in Google SOAR technologies, Expertise in Google SOAR etc.
- Development of playbooks using low code, or no code automation blocks.
- Knowledge on coding language such as Python and must be able to develop low code automations.
- Knowledge on integrating apps/systems with Google using out of box integrations available or developing custom integration.
- Dashboard knowledge on Google SOAR.
- Assess, design, and improve various processes and workflows with a focus on integrating automation through Google SOAR tools and technologies.
- Integrate new logging sources and build playbooks to properly triage and respond to security incidents while reducing the time needed to analyze each event.
Preferred Knowledge
- Experience with Google Security Orchestration, Automation and Response (Google SOAR) tools and technologies.
- Experience with Python scripting language for automation.
- Strong understanding of security architecture, tool integration, API development and automation.
- Experience with operating system internals for both Linux and Windows platforms.
- Basic knowledge of User Entity Behavior, Machine Learning models.
- Working knowledge of all architectural components of SOAR.
- Knowledge of Google SecOps.
- Knowledge about cloud environment and hybrid environments.
- Experience of threat intelligence and threat hunting is added advantage.
- Must have good hands-on experience on developing widgets and dashboards.
- Must have experience in overall knowledge of Cyber.
- Have good understanding of the MITRE framework.
Preferred Skills
- SOAR Technologies, Information Security Expertise in SOAR solutions like Phantom, Cortex XSOAR, Siemplify, etc.
- API Programming or Python skills.
Generative AI in Security
- Explore and implement Generative AI models to enhance detection logic, log summarization, and threat triage.
Professional and Educational Background
- Bachelor's Degree Preferred.